DEV Community

Mark0 profile picture

Mark0

404 bio not found

Joined Joined on 
When it Snows it Pours – Anatomy of a ServiceNow Red Team

When it Snows it Pours – Anatomy of a ServiceNow Red Team

Comments
1 min read
The Good, the Bad and the Ugly in Cybersecurity – Week 35

The Good, the Bad and the Ugly in Cybersecurity – Week 35

Comments
1 min read
Perturbation Probing: A New Diagnostic for the Fragility of LLM Safety

Perturbation Probing: A New Diagnostic for the Fragility of LLM Safety

Comments
1 min read
Multiple Integer Overflows in U-Boot Filesystem Parsing (CVE-2025-70290 through CVE-2025-70293)

Multiple Integer Overflows in U-Boot Filesystem Parsing (CVE-2025-70290 through CVE-2025-70293)

Comments
1 min read
ServiceNow warns of three max severity security vulnerabilities

ServiceNow warns of three max severity security vulnerabilities

Comments
1 min read
Two Unitree G1 EDU Humanoid Robot Flaws Enable Root RCE, One Starts Over Bluetooth

Two Unitree G1 EDU Humanoid Robot Flaws Enable Root RCE, One Starts Over Bluetooth

Comments
1 min read
Anthropic warns infostealer malware is hijacking Claude sessions to drain usage

Anthropic warns infostealer malware is hijacking Claude sessions to drain usage

Comments
1 min read
“Sorry, I can’t help with that”: How your guardrails might become the attacker’s best friend

“Sorry, I can’t help with that”: How your guardrails might become the attacker’s best friend

Comments
1 min read
Five Critical WordPress Plugin and Theme Flaws Enable Site Takeover or RCE

Five Critical WordPress Plugin and Theme Flaws Enable Site Takeover or RCE

Comments
1 min read
ServiceNow warns of three max severity security vulnerabilities

ServiceNow warns of three max severity security vulnerabilities

Comments
1 min read
Two Unitree G1 EDU Humanoid Robot Flaws Enable Root RCE, One Starts Over Bluetooth

Two Unitree G1 EDU Humanoid Robot Flaws Enable Root RCE, One Starts Over Bluetooth

Comments
1 min read
SpooNMAP Grows Up: Findings, Local LLM Detection, and a Whole Lot Less Waiting

SpooNMAP Grows Up: Findings, Local LLM Detection, and a Whole Lot Less Waiting

Comments
1 min read
Infrared: How External Researchers Bring Tools into OST

Infrared: How External Researchers Bring Tools into OST

Comments
1 min read
Inside Elastic's agentic SOC: How we took AI alert triage from 60% to 92% accuracy

Inside Elastic's agentic SOC: How we took AI alert triage from 60% to 92% accuracy

1
Comments
1 min read
The Path to the Autonomous SOC: The Early Returns of AI & What It Means for Cybersecurity

The Path to the Autonomous SOC: The Early Returns of AI & What It Means for Cybersecurity

Comments
1 min read
Edge Infrastructure Under Siege: What Two Independent Datasets Reveal About Who’s Exploiting Your Perimeter

Edge Infrastructure Under Siege: What Two Independent Datasets Reveal About Who’s Exploiting Your Perimeter

Comments
1 min read
The safety penalty: Reclaiming operational sovereignty in the age of AI

The safety penalty: Reclaiming operational sovereignty in the age of AI

Comments
1 min read
Choose your fighter: Balancing competing requirements to select models for your AI SOC

Choose your fighter: Balancing competing requirements to select models for your AI SOC

Comments
1 min read
[NotCVE-2026-0013] CHIRP Kenwood ITM Driver Eval Injection Allows Arbitrary Code Execution via Crafted Radio File

[NotCVE-2026-0013] CHIRP Kenwood ITM Driver Eval Injection Allows Arbitrary Code Execution via Crafted Radio File

Comments
1 min read
The State of AI-Enabled Malware August 2026: From Brand Abuse to Agentic Execution

The State of AI-Enabled Malware August 2026: From Brand Abuse to Agentic Execution

Comments
1 min read
Exploits and vulnerabilities in Q2 2026

Exploits and vulnerabilities in Q2 2026

Comments
1 min read
Tricky 'SynkLoader' Multitool May Herald Ransomware

Tricky 'SynkLoader' Multitool May Herald Ransomware

Comments
1 min read
UAT-10147 Uses AI to Scale Server Attacks, Deploys SPECTRE With EDR Bypass and Linux Rootkit

UAT-10147 Uses AI to Scale Server Attacks, Deploys SPECTRE With EDR Bypass and Linux Rootkit

Comments
1 min read
E4del and PINHOLE RATs Turn FTP Banners Into Dead Drops for Malware Commands

E4del and PINHOLE RATs Turn FTP Banners Into Dead Drops for Malware Commands

Comments
1 min read
SpooNMAP Grows Up: Findings, Local LLM Detection, and a Whole Lot Less Waiting

SpooNMAP Grows Up: Findings, Local LLM Detection, and a Whole Lot Less Waiting

Comments
1 min read
Infrared: How External Researchers Bring Tools into OST

Infrared: How External Researchers Bring Tools into OST

Comments
1 min read
Update: base64dump.py Version 0.0.31

Update: base64dump.py Version 0.0.31

Comments
1 min read
How a team of entity maintainers monitors, connects and scores entities in Elastic Security

How a team of entity maintainers monitors, connects and scores entities in Elastic Security

Comments
1 min read
Inside Elastic's agentic SOC: How we took AI alert triage from 60% to 92% accuracy

Inside Elastic's agentic SOC: How we took AI alert triage from 60% to 92% accuracy

Comments
1 min read
The Path to the Autonomous SOC: The Early Returns of AI & What It Means for Cybersecurity

The Path to the Autonomous SOC: The Early Returns of AI & What It Means for Cybersecurity

Comments
1 min read
24th August – Threat Intelligence Report

24th August – Threat Intelligence Report

Comments
1 min read
The safety penalty: Reclaiming operational sovereignty in the age of AI

The safety penalty: Reclaiming operational sovereignty in the age of AI

1
Comments
1 min read
[remote] CVE-2026-42167 - ProFTPD mod_sql post-authentication SQLi - RCE

[remote] CVE-2026-42167 - ProFTPD mod_sql post-authentication SQLi - RCE

Comments
1 min read
The State of AI-Enabled Malware August 2026: From Brand Abuse to Agentic Execution

The State of AI-Enabled Malware August 2026: From Brand Abuse to Agentic Execution

Comments
1 min read
Tricky 'SynkLoader' Multitool May Herald Ransomware

Tricky 'SynkLoader' Multitool May Herald Ransomware

Comments
2 min read
UAT-10147 Uses AI to Scale Server Attacks, Deploys SPECTRE With EDR Bypass and Linux Rootkit

UAT-10147 Uses AI to Scale Server Attacks, Deploys SPECTRE With EDR Bypass and Linux Rootkit

Comments
1 min read
E4del and PINHOLE RATs Turn FTP Banners Into Dead Drops for Malware Commands

E4del and PINHOLE RATs Turn FTP Banners Into Dead Drops for Malware Commands

Comments
1 min read
Overview of Content Published in July

Overview of Content Published in July

Comments
1 min read
2026-07-31: SmartApeSG ClickFix campaign pushes unidentified RAT

2026-07-31: SmartApeSG ClickFix campaign pushes unidentified RAT

Comments
1 min read
2026-07-31: Seven days of scans and probes and web traffic hitting my web server

2026-07-31: Seven days of scans and probes and web traffic hitting my web server

Comments
1 min read
What's new in Elastic Defend: 800+ vulnerable driver rules, automated troubleshooting, and ARM support

What's new in Elastic Defend: 800+ vulnerable driver rules, automated troubleshooting, and ARM support

Comments
1 min read
Alert Zero: AI-driven alert triage and attack investigation for the agentic SOC

Alert Zero: AI-driven alert triage and attack investigation for the agentic SOC

Comments
1 min read
Elastic goes all-in on Hacker Summer Camp at Black Hat and DEF CON in Las Vegas

Elastic goes all-in on Hacker Summer Camp at Black Hat and DEF CON in Las Vegas

Comments
1 min read
Toy Ghouls’ new toy: the GenieLocker ransomware

Toy Ghouls’ new toy: the GenieLocker ransomware

Comments
1 min read
Chinese-Speaking Threat Actor Harnesses AI Models for Autonomous Cyberattacks

Chinese-Speaking Threat Actor Harnesses AI Models for Autonomous Cyberattacks

Comments
1 min read
OctLurk and SilkLurk: newly identified tailored backdoors in cyber-espionage campaign in Central Asia

OctLurk and SilkLurk: newly identified tailored backdoors in cyber-espionage campaign in Central Asia

Comments
1 min read
Network Anomaly Detection in KATA

Network Anomaly Detection in KATA

Comments
1 min read
The Xcode Assassin Returns: A Deep Dive Into the Latest XCSSET Version

The Xcode Assassin Returns: A Deep Dive Into the Latest XCSSET Version

Comments
1 min read
The Good, the Bad and the Ugly in Cybersecurity – Week 31

The Good, the Bad and the Ugly in Cybersecurity – Week 31

Comments
1 min read
JetBrains warns of critical TeamCity remote code execution flaw

JetBrains warns of critical TeamCity remote code execution flaw

Comments
1 min read
Anthropic's Claude breached 3 orgs, uploaded PyPI malware during tests

Anthropic's Claude breached 3 orgs, uploaded PyPI malware during tests

Comments
1 min read
Rails patches critical Active Storage flaw with RCE potential

Rails patches critical Active Storage flaw with RCE potential

Comments
1 min read
Exploring the Hugging Face Breach: mapping AI agent tactics to Elastic Defend

Exploring the Hugging Face Breach: mapping AI agent tactics to Elastic Defend

Comments
1 min read
Accelerating EDR Evasion with LLM-Driven Analysis

Accelerating EDR Evasion with LLM-Driven Analysis

Comments
1 min read
Prompt Engineering for Security Agents - A Measurable Approach with GEPA

Prompt Engineering for Security Agents - A Measurable Approach with GEPA

1
Comments 1
1 min read
Report As You Go: Maintaining Good Documentation for SOC Analysts

Report As You Go: Maintaining Good Documentation for SOC Analysts

Comments
1 min read
AI Directives and AI Strategy Development

AI Directives and AI Strategy Development

Comments
1 min read
Stop rewriting detection rules by hand: automatic Sentinel-to-Elastic migration is here

Stop rewriting detection rules by hand: automatic Sentinel-to-Elastic migration is here

Comments
1 min read
IR Trends Q2 2026: Phishing and weaponized remote management tools drive attack chains

IR Trends Q2 2026: Phishing and weaponized remote management tools drive attack chains

Comments
1 min read
Falcon Platform IOAs Arrive in Falcon Next-Gen SIEM to Identify New Threats

Falcon Platform IOAs Arrive in Falcon Next-Gen SIEM to Identify New Threats

Comments
1 min read
loading...